Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.2.1.2014.35
Kategorie:General
Titel:Mozilla Firefox Security Advisory (MFSA2014-35) - Linux
Zusammenfassung:This host is missing a security update for Mozilla Firefox.
Beschreibung:Summary:
This host is missing a security update for Mozilla Firefox.

Vulnerability Insight:
Privilege escalation through Mozilla Maintenance Service Installer
Security researcher Ash reported an issue affected the
Mozilla Maintenance Service on Windows systems. The Mozilla Maintenance Service
installer writes to a temporary directory created during the update process
which is writable by users. If malicious DLL files are placed within this
directory during the update process, these DLL files can run in a privileged
context through the Mozilla Maintenance Service's privileges, allowing for local
privilege escalation.

Affected Software/OS:
Firefox version(s) below 29.

Solution:
The vendor has released an update. Please see the reference(s) for more information.

CVSS Score:
6.9

CVSS Vector:
AV:L/AC:M/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2014-1520
http://lists.fedoraproject.org/pipermail/package-announce/2014-May/132437.html
http://lists.fedoraproject.org/pipermail/package-announce/2014-May/132332.html
http://seclists.org/fulldisclosure/2021/Mar/14
https://security.gentoo.org/glsa/201504-01
http://packetstormsecurity.com/files/161696/Mozilla-Arbitrary-Code-Execution-Privilege-Escalation.html
http://www.securitytracker.com/id/1030163
http://secunia.com/advisories/59866
CopyrightCopyright (C) 2021 Greenbone Networks GmbH

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.